rev |
line source |
jbe@0
|
1 #!/usr/bin/env lua
|
jbe@0
|
2
|
jbe@0
|
3 -- module preamble
|
jbe@0
|
4 local _G, _M = _ENV, {}
|
jbe@0
|
5 _ENV = setmetatable({}, {
|
jbe@0
|
6 __index = function(self, key)
|
jbe@0
|
7 local value = _M[key]; if value ~= nil then return value end
|
jbe@0
|
8 return _G[key]
|
jbe@0
|
9 end,
|
jbe@63
|
10 __newindex = _M
|
jbe@0
|
11 })
|
jbe@0
|
12
|
jbe@0
|
13 -- function that encodes certain HTML entities:
|
jbe@0
|
14 -- (not used by the library itself)
|
jbe@0
|
15 function encode_html(text)
|
jbe@0
|
16 return (
|
jbe@0
|
17 string.gsub(
|
jbe@0
|
18 text, '[<>&"]',
|
jbe@0
|
19 function(char)
|
jbe@0
|
20 if char == '<' then
|
jbe@0
|
21 return "<"
|
jbe@0
|
22 elseif char == '>' then
|
jbe@0
|
23 return ">"
|
jbe@0
|
24 elseif char == '&' then
|
jbe@0
|
25 return "&"
|
jbe@0
|
26 elseif char == '"' then
|
jbe@0
|
27 return """
|
jbe@0
|
28 end
|
jbe@0
|
29 end
|
jbe@0
|
30 )
|
jbe@0
|
31 )
|
jbe@0
|
32
|
jbe@0
|
33 end
|
jbe@0
|
34
|
jbe@0
|
35 -- function that encodes special characters for URIs:
|
jbe@0
|
36 -- (not used by the library itself)
|
jbe@0
|
37 function encode_uri(text)
|
jbe@0
|
38 return (
|
jbe@0
|
39 string.gsub(text, "[^0-9A-Za-z_%.~-]",
|
jbe@0
|
40 function (char)
|
jbe@0
|
41 return string.format("%%%02x", string.byte(char))
|
jbe@0
|
42 end
|
jbe@0
|
43 )
|
jbe@0
|
44 )
|
jbe@0
|
45 end
|
jbe@0
|
46
|
jbe@0
|
47 -- function undoing URL encoding:
|
jbe@0
|
48 do
|
jbe@0
|
49 local b0 = string.byte("0")
|
jbe@0
|
50 local b9 = string.byte("9")
|
jbe@0
|
51 local bA = string.byte("A")
|
jbe@0
|
52 local bF = string.byte("F")
|
jbe@0
|
53 local ba = string.byte("a")
|
jbe@0
|
54 local bf = string.byte("f")
|
jbe@0
|
55 function decode_uri(str)
|
jbe@0
|
56 return (
|
jbe@0
|
57 string.gsub(
|
jbe@0
|
58 string.gsub(str, "%+", " "),
|
jbe@0
|
59 "%%([0-9A-Fa-f][0-9A-Fa-f])",
|
jbe@0
|
60 function(hex)
|
jbe@0
|
61 local n1, n2 = string.byte(hex, 1, 2)
|
jbe@0
|
62 if n1 >= b0 and n1 <= b9 then n1 = n1 - b0
|
jbe@0
|
63 elseif n1 >= bA and n1 <= bF then n1 = n1 - bA + 10
|
jbe@0
|
64 elseif n1 >= ba and n1 <= bf then n1 = n1 - ba + 10
|
jbe@0
|
65 else error("Assertion failed") end
|
jbe@0
|
66 if n2 >= b0 and n2 <= b9 then n2 = n2 - b0
|
jbe@0
|
67 elseif n2 >= bA and n2 <= bF then n2 = n2 - bA + 10
|
jbe@0
|
68 elseif n2 >= ba and n2 <= bf then n2 = n2 - ba + 10
|
jbe@0
|
69 else error("Assertion failed") end
|
jbe@0
|
70 return string.char(n1 * 16 + n2)
|
jbe@0
|
71 end
|
jbe@0
|
72 )
|
jbe@0
|
73 )
|
jbe@0
|
74 end
|
jbe@0
|
75 end
|
jbe@0
|
76
|
jbe@0
|
77 -- status codes that carry no response body (in addition to 1xx):
|
jbe@0
|
78 -- (set to "zero_content_length" if Content-Length header is required)
|
jbe@0
|
79 status_without_response_body = {
|
jbe@5
|
80 ["101"] = true, -- list 101 to allow protocol switch
|
jbe@0
|
81 ["204"] = true,
|
jbe@0
|
82 ["205"] = "zero_content_length",
|
jbe@0
|
83 ["304"] = true
|
jbe@0
|
84 }
|
jbe@0
|
85
|
jbe@167
|
86 -- handling of GET/POST param tables:
|
jbe@167
|
87 local new_params_list -- defined later
|
jbe@167
|
88 do
|
jbe@167
|
89 local params_list_mapping = setmetatable({}, {__mode="k"})
|
jbe@167
|
90 local function nextnonempty(tbl, key)
|
jbe@167
|
91 while true do
|
jbe@167
|
92 key = next(tbl, key)
|
jbe@167
|
93 if key == nil then
|
jbe@167
|
94 return nil
|
jbe@167
|
95 end
|
jbe@167
|
96 local value = tbl[key]
|
jbe@167
|
97 if #value > 0 then
|
jbe@167
|
98 return key, value
|
jbe@167
|
99 end
|
jbe@35
|
100 end
|
jbe@35
|
101 end
|
jbe@167
|
102 local function nextvalue(tbl, key)
|
jbe@174
|
103 while true do
|
jbe@174
|
104 key = next(tbl, key)
|
jbe@174
|
105 if key == nil then
|
jbe@174
|
106 return nil
|
jbe@174
|
107 end
|
jbe@174
|
108 local value = tbl[key][1]
|
jbe@174
|
109 if value ~= nil then
|
jbe@174
|
110 return key, value
|
jbe@174
|
111 end
|
jbe@167
|
112 end
|
jbe@167
|
113 end
|
jbe@167
|
114 local params_list_metatable = {
|
jbe@167
|
115 __index = function(self, key)
|
jbe@167
|
116 local tbl = {}
|
jbe@167
|
117 self[key] = tbl
|
jbe@167
|
118 return tbl
|
jbe@167
|
119 end,
|
jbe@167
|
120 __pairs = function(self)
|
jbe@167
|
121 return nextnonempty, self, nil
|
jbe@167
|
122 end
|
jbe@167
|
123 }
|
jbe@167
|
124 local params_metatable = {
|
jbe@167
|
125 __index = function(self, key)
|
jbe@167
|
126 return params_list_mapping[self][key][1]
|
jbe@167
|
127 end,
|
jbe@167
|
128 __newindex = function(self, key, value)
|
jbe@167
|
129 params_list_mapping[self][key] = {value}
|
jbe@167
|
130 end,
|
jbe@167
|
131 __pairs = function(self)
|
jbe@167
|
132 return nextvalue, params_list_mapping[self], nil
|
jbe@167
|
133 end
|
jbe@167
|
134 }
|
jbe@175
|
135 -- function that returns a table to store key value-list pairs,
|
jbe@167
|
136 -- and a second table automatically mapping keys to the first value
|
jbe@167
|
137 -- using the key value-list pairs in the first table:
|
jbe@167
|
138 new_params_list = function()
|
jbe@167
|
139 local params_list = setmetatable({}, params_list_metatable)
|
jbe@167
|
140 local params = setmetatable({}, params_metatable)
|
jbe@167
|
141 params_list_mapping[params] = params_list
|
jbe@167
|
142 return params_list, params
|
jbe@167
|
143 end
|
jbe@167
|
144 end
|
jbe@167
|
145
|
jbe@175
|
146 -- function parsing URL encoded form data and storing it in
|
jbe@167
|
147 -- a key value-list pairs structure that has to be
|
jbe@167
|
148 -- previously obtained by calling by new_params_list():
|
jbe@167
|
149 local function read_urlencoded_form(tbl, data)
|
jbe@167
|
150 for rawkey, rawvalue in string.gmatch(data, "([^?=&]*)=([^?=&]*)") do
|
jbe@167
|
151 local subtbl = tbl[decode_uri(rawkey)]
|
jbe@167
|
152 subtbl[#subtbl+1] = decode_uri(rawvalue)
|
jbe@167
|
153 end
|
jbe@0
|
154 end
|
jbe@0
|
155
|
jbe@175
|
156 -- function to convert a HTTP request handler to a socket handler:
|
jbe@0
|
157 function generate_handler(handler, options)
|
jbe@0
|
158 -- swap arguments if necessary (for convenience):
|
jbe@0
|
159 if type(handler) ~= "function" and type(options) == "function" then
|
jbe@0
|
160 handler, options = options, handler
|
jbe@0
|
161 end
|
jbe@160
|
162 -- helper function to process options:
|
jbe@160
|
163 local function default(name, default_value)
|
jbe@160
|
164 local value = options[name]
|
jbe@160
|
165 if value == nil then
|
jbe@160
|
166 return default_value
|
jbe@160
|
167 else
|
jbe@160
|
168 return value or nil
|
jbe@159
|
169 end
|
jbe@160
|
170 end
|
jbe@0
|
171 -- process options:
|
jbe@0
|
172 options = options or {}
|
jbe@0
|
173 local preamble = "" -- preamble sent with every(!) HTTP response
|
jbe@0
|
174 do
|
jbe@0
|
175 -- named arg "static_headers" is used to create the preamble:
|
jbe@0
|
176 local s = options.static_headers
|
jbe@0
|
177 local t = {}
|
jbe@0
|
178 if s then
|
jbe@0
|
179 if type(s) == "string" then
|
jbe@0
|
180 for line in string.gmatch(s, "[^\r\n]+") do
|
jbe@0
|
181 t[#t+1] = line
|
jbe@0
|
182 end
|
jbe@0
|
183 else
|
jbe@175
|
184 for i, kv in ipairs(s) do
|
jbe@0
|
185 if type(kv) == "string" then
|
jbe@0
|
186 t[#t+1] = kv
|
jbe@0
|
187 else
|
jbe@0
|
188 t[#t+1] = kv[1] .. ": " .. kv[2]
|
jbe@0
|
189 end
|
jbe@0
|
190 end
|
jbe@0
|
191 end
|
jbe@0
|
192 end
|
jbe@0
|
193 t[#t+1] = ""
|
jbe@0
|
194 preamble = table.concat(t, "\r\n")
|
jbe@0
|
195 end
|
jbe@160
|
196 local input_chunk_size = options.maximum_input_chunk_size or options.chunk_size or 16384
|
jbe@44
|
197 local output_chunk_size = options.minimum_output_chunk_size or options.chunk_size or 1024
|
jbe@160
|
198 local header_size_limit = options.header_size_limit or 1024*1024
|
jbe@160
|
199 local body_size_limit = options.body_size_limit or 64*1024*1024
|
jbe@175
|
200 local request_idle_timeout = default("request_idle_timeout", 65)
|
jbe@173
|
201 local request_header_timeout = default("request_header_timeout", 30)
|
jbe@175
|
202 local request_body_timeout = default("request_body_timeout", 300)
|
jbe@173
|
203 local response_timeout = default("response_timeout", 1800)
|
jbe@160
|
204 local poll = options.poll_function or moonbridge_io.poll
|
jbe@160
|
205 -- return socket handler:
|
jbe@0
|
206 return function(socket)
|
jbe@160
|
207 local socket_set = {[socket] = true} -- used for poll function
|
jbe@0
|
208 local survive = true -- set to false if process shall be terminated later
|
jbe@176
|
209 local consume -- can be set to function that reads some input if possible
|
jbe@176
|
210 -- function that may be used as "consume" function
|
jbe@176
|
211 -- and which drains some input if possible:
|
jbe@160
|
212 local function drain()
|
jbe@163
|
213 local bytes, status = socket:drain_nb(input_chunk_size)
|
jbe@163
|
214 if not bytes or status == "eof" then
|
jbe@160
|
215 consume = nil
|
jbe@50
|
216 end
|
jbe@159
|
217 end
|
jbe@163
|
218 -- function trying to unblock socket by reading:
|
jbe@160
|
219 local function unblock()
|
jbe@160
|
220 if consume then
|
jbe@160
|
221 poll(socket_set, socket_set)
|
jbe@160
|
222 consume()
|
jbe@160
|
223 else
|
jbe@160
|
224 poll(nil, socket_set)
|
jbe@0
|
225 end
|
jbe@154
|
226 end
|
jbe@163
|
227 -- function that enforces consumption of all input:
|
jbe@162
|
228 local function consume_all()
|
jbe@162
|
229 while consume do
|
jbe@163
|
230 poll(socket_set, nil)
|
jbe@162
|
231 consume()
|
jbe@162
|
232 end
|
jbe@162
|
233 end
|
jbe@163
|
234 -- handle requests in a loop:
|
jbe@160
|
235 repeat
|
jbe@166
|
236 -- table for caching nil values:
|
jbe@166
|
237 local headers_value_nil = {}
|
jbe@177
|
238 -- create a new request object (methods are added later):
|
jbe@166
|
239 local request -- allow references to local variable
|
jbe@166
|
240 request = {
|
jbe@165
|
241 -- allow access to underlying socket:
|
jbe@0
|
242 socket = socket,
|
jbe@165
|
243 -- cookies are simply stored in a table:
|
jbe@165
|
244 cookies = {},
|
jbe@165
|
245 -- table mapping header field names to value-lists
|
jbe@165
|
246 -- (raw access, but case-insensitive):
|
jbe@165
|
247 headers = setmetatable({}, {
|
jbe@165
|
248 __index = function(self, key)
|
jbe@180
|
249 assert(type(key) == "string", "Attempted to index headers table with a non-string key")
|
jbe@179
|
250 local lowerkey = string.lower(key)
|
jbe@179
|
251 local result = rawget(self, lowerkey)
|
jbe@179
|
252 if result == nil then
|
jbe@179
|
253 result = {}
|
jbe@179
|
254 rawset(self, lowerkey, result)
|
jbe@179
|
255 end
|
jbe@179
|
256 rawset(self, key, result)
|
jbe@179
|
257 return result
|
jbe@165
|
258 end
|
jbe@165
|
259 }),
|
jbe@165
|
260 -- table mapping header field names to value-lists
|
jbe@165
|
261 -- (for headers with comma separated values):
|
jbe@165
|
262 headers_csv_table = setmetatable({}, {
|
jbe@165
|
263 __index = function(self, key)
|
jbe@165
|
264 local result = {}
|
jbe@165
|
265 for i, line in ipairs(request.headers[key]) do
|
jbe@165
|
266 for entry in string.gmatch(line, "[^,]+") do
|
jbe@165
|
267 local value = string.match(entry, "^[ \t]*(..-)[ \t]*$")
|
jbe@165
|
268 if value then
|
jbe@165
|
269 result[#result+1] = value
|
jbe@165
|
270 end
|
jbe@165
|
271 end
|
jbe@165
|
272 end
|
jbe@165
|
273 self[key] = result
|
jbe@165
|
274 return result
|
jbe@165
|
275 end
|
jbe@165
|
276 }),
|
jbe@165
|
277 -- table mapping header field names to a comma separated string
|
jbe@165
|
278 -- (for headers with comma separated values):
|
jbe@165
|
279 headers_csv_string = setmetatable({}, {
|
jbe@165
|
280 __index = function(self, key)
|
jbe@165
|
281 local result = {}
|
jbe@165
|
282 for i, line in ipairs(request.headers[key]) do
|
jbe@165
|
283 result[#result+1] = line
|
jbe@165
|
284 end
|
jbe@172
|
285 result = table.concat(result, ", ")
|
jbe@165
|
286 self[key] = result
|
jbe@165
|
287 return result
|
jbe@165
|
288 end
|
jbe@165
|
289 }),
|
jbe@165
|
290 -- table mapping header field names to a single string value
|
jbe@165
|
291 -- (or false if header has been sent multiple times):
|
jbe@165
|
292 headers_value = setmetatable({}, {
|
jbe@165
|
293 __index = function(self, key)
|
jbe@165
|
294 if headers_value_nil[key] then
|
jbe@165
|
295 return nil
|
jbe@165
|
296 end
|
jbe@165
|
297 local values = request.headers_csv_table[key]
|
jbe@165
|
298 if #values == 0 then
|
jbe@165
|
299 headers_value_nil[key] = true
|
jbe@165
|
300 else
|
jbe@180
|
301 local result
|
jbe@180
|
302 if #values == 1 then
|
jbe@180
|
303 result = values[1]
|
jbe@180
|
304 else
|
jbe@180
|
305 result = false
|
jbe@180
|
306 end
|
jbe@180
|
307 self[key] = result
|
jbe@180
|
308 return result
|
jbe@165
|
309 end
|
jbe@165
|
310 end
|
jbe@165
|
311 }),
|
jbe@165
|
312 -- table mapping header field names to a flag table,
|
jbe@165
|
313 -- indicating if the comma separated value contains certain entries:
|
jbe@165
|
314 headers_flags = setmetatable({}, {
|
jbe@165
|
315 __index = function(self, key)
|
jbe@165
|
316 local result = setmetatable({}, {
|
jbe@165
|
317 __index = function(self, key)
|
jbe@180
|
318 assert(type(key) == "string", "Attempted to index header flag table with a non-string key")
|
jbe@165
|
319 local lowerkey = string.lower(key)
|
jbe@165
|
320 local result = rawget(self, lowerkey) or false
|
jbe@165
|
321 self[lowerkey] = result
|
jbe@165
|
322 self[key] = result
|
jbe@165
|
323 return result
|
jbe@165
|
324 end
|
jbe@165
|
325 })
|
jbe@165
|
326 for i, value in ipairs(request.headers_csv_table[key]) do
|
jbe@165
|
327 result[string.lower(value)] = true
|
jbe@165
|
328 end
|
jbe@165
|
329 self[key] = result
|
jbe@165
|
330 return result
|
jbe@165
|
331 end
|
jbe@165
|
332 })
|
jbe@0
|
333 }
|
jbe@172
|
334 -- create metatable for request object:
|
jbe@172
|
335 local request_mt = {}
|
jbe@172
|
336 setmetatable(request, request_mt)
|
jbe@172
|
337 -- callback for request body streaming:
|
jbe@172
|
338 local process_body_chunk
|
jbe@162
|
339 -- local variables to track the state:
|
jbe@162
|
340 local state = "init" -- one of:
|
jbe@162
|
341 -- "init" (initial state)
|
jbe@180
|
342 -- "no_status_sent" (request body streaming config complete)
|
jbe@162
|
343 -- "info_status_sent" (1xx status code has been sent)
|
jbe@162
|
344 -- "bodyless_status_sent" (204/304 status code has been sent)
|
jbe@162
|
345 -- "status_sent" (regular status code has been sent)
|
jbe@162
|
346 -- "headers_sent" (headers have been terminated)
|
jbe@162
|
347 -- "finished" (request has been answered completely)
|
jbe@163
|
348 -- "faulty" (I/O or protocaol error)
|
jbe@180
|
349 local request_body_content_length -- Content-Length of request body
|
jbe@162
|
350 local close_requested = false -- "Connection: close" requested
|
jbe@162
|
351 local close_responded = false -- "Connection: close" sent
|
jbe@180
|
352 local content_length = nil -- value of Content-Length header sent
|
jbe@180
|
353 local chunk_parts = {} -- list of chunks to send
|
jbe@180
|
354 local chunk_bytes = 0 -- sum of lengths of chunks to send
|
jbe@172
|
355 local streamed_post_params = {} -- mapping from POST field name to stream function
|
jbe@172
|
356 local streamed_post_param_patterns = {} -- list of POST field pattern and stream function pairs
|
jbe@164
|
357 -- function to assert non-faulty handle:
|
jbe@164
|
358 local function assert_not_faulty()
|
jbe@164
|
359 assert(state ~= "faulty", "Tried to use faulty request handle")
|
jbe@164
|
360 end
|
jbe@162
|
361 -- functions to send data to the browser:
|
jbe@160
|
362 local function send(...)
|
jbe@181
|
363 local old_state, state = state, "faulty"
|
jbe@181
|
364 if not socket:write_call(unblock, ...) then
|
jbe@181
|
365 socket:reset()
|
jbe@181
|
366 error("Could not send data to client: " .. errmsg)
|
jbe@181
|
367 end
|
jbe@181
|
368 state = old_state
|
jbe@38
|
369 end
|
jbe@162
|
370 local function send_flush(...)
|
jbe@181
|
371 local old_state, state = state, "faulty"
|
jbe@181
|
372 if not socket:flush_call(unblock, ...) then
|
jbe@181
|
373 socket:reset()
|
jbe@181
|
374 error("Could not send data to client: " .. errmsg)
|
jbe@181
|
375 end
|
jbe@181
|
376 state = old_state
|
jbe@181
|
377 end
|
jbe@181
|
378 -- function to assert proper finish/close/reset:
|
jbe@181
|
379 local function assert_close(retval, errmsg)
|
jbe@181
|
380 if not retval then
|
jbe@181
|
381 error("Could not finish sending data to client: " .. errmsg)
|
jbe@181
|
382 end
|
jbe@162
|
383 end
|
jbe@163
|
384 -- function to finish request:
|
jbe@163
|
385 local function finish()
|
jbe@163
|
386 if close_responded then
|
jbe@163
|
387 -- discard any input:
|
jbe@163
|
388 consume = drain
|
jbe@163
|
389 -- close output stream:
|
jbe@163
|
390 send_flush()
|
jbe@163
|
391 assert_close(socket:finish())
|
jbe@181
|
392 -- wait for EOF from peer to avoid immediate TCP RST condition:
|
jbe@163
|
393 consume_all()
|
jbe@163
|
394 -- fully close socket:
|
jbe@163
|
395 assert_close(socket:close())
|
jbe@163
|
396 else
|
jbe@181
|
397 -- flush outgoing data:
|
jbe@163
|
398 send_flush()
|
jbe@181
|
399 -- consume incoming data:
|
jbe@163
|
400 consume_all()
|
jbe@163
|
401 end
|
jbe@163
|
402 end
|
jbe@164
|
403 -- function that writes out buffered chunks (without flushing the socket):
|
jbe@164
|
404 function send_chunk()
|
jbe@164
|
405 if chunk_bytes > 0 then
|
jbe@181
|
406 local old_state, state = state, "faulty"
|
jbe@181
|
407 send(string.format("%x\r\n", chunk_bytes))
|
jbe@181
|
408 for i = 1, #chunk_parts do
|
jbe@164
|
409 send(chunk_parts[i])
|
jbe@164
|
410 chunk_parts[i] = nil
|
jbe@164
|
411 end
|
jbe@164
|
412 chunk_bytes = 0
|
jbe@164
|
413 send("\r\n")
|
jbe@181
|
414 state = old_state
|
jbe@164
|
415 end
|
jbe@164
|
416 end
|
jbe@168
|
417 -- function to report an error:
|
jbe@168
|
418 local function request_error(throw_error, status, text)
|
jbe@168
|
419 if
|
jbe@168
|
420 state == "init" or
|
jbe@168
|
421 state == "no_status_sent" or
|
jbe@168
|
422 state == "info_status_sent"
|
jbe@168
|
423 then
|
jbe@182
|
424 local error_response_status, errmsg = pcall(function()
|
jbe@168
|
425 request:monologue()
|
jbe@168
|
426 request:send_status(status)
|
jbe@168
|
427 request:send_header("Content-Type", "text/plain")
|
jbe@168
|
428 request:send_data(status, "\n")
|
jbe@168
|
429 if text then
|
jbe@168
|
430 request:send_data("\n", text, "\n")
|
jbe@168
|
431 end
|
jbe@168
|
432 request:finish()
|
jbe@168
|
433 end)
|
jbe@168
|
434 if not error_response_status then
|
jbe@181
|
435 if text then
|
jbe@182
|
436 error("Error while sending error response (" .. status .. " / " .. text .. "): " .. errmsg)
|
jbe@181
|
437 else
|
jbe@182
|
438 error("Error while sending error response (" .. status .. "): " .. errmsg)
|
jbe@181
|
439 end
|
jbe@168
|
440 end
|
jbe@168
|
441 end
|
jbe@168
|
442 if throw_error then
|
jbe@182
|
443 local errmsg = "Error while reading request from client. Error response: " .. status
|
jbe@182
|
444 if text then
|
jbe@182
|
445 errmsg = errmsg .. " (" .. text .. ")"
|
jbe@182
|
446 end
|
jbe@168
|
447 error(errmsg)
|
jbe@168
|
448 else
|
jbe@168
|
449 return survive
|
jbe@168
|
450 end
|
jbe@168
|
451 end
|
jbe@173
|
452 -- read functions
|
jbe@170
|
453 local function read(...)
|
jbe@170
|
454 local data, status = socket:read_yield(...)
|
jbe@170
|
455 if data == nil then
|
jbe@170
|
456 request_error(true, "400 Bad Request", "Read error")
|
jbe@170
|
457 end
|
jbe@170
|
458 if status == "eof" then
|
jbe@170
|
459 request_error(true, "400 Bad Request", "Unexpected EOF")
|
jbe@170
|
460 end
|
jbe@170
|
461 return data
|
jbe@170
|
462 end
|
jbe@173
|
463 local function read_eof(...)
|
jbe@173
|
464 local data, status = socket:read_yield(...)
|
jbe@173
|
465 if data == nil then
|
jbe@173
|
466 request_error(true, "400 Bad Request", "Read error")
|
jbe@173
|
467 end
|
jbe@173
|
468 if status == "eof" then
|
jbe@173
|
469 if data == "" then
|
jbe@173
|
470 return nil
|
jbe@173
|
471 else
|
jbe@173
|
472 request_error(true, "400 Bad Request", "Unexpected EOF")
|
jbe@173
|
473 end
|
jbe@173
|
474 end
|
jbe@173
|
475 return data
|
jbe@173
|
476 end
|
jbe@168
|
477 -- reads a number of bytes from the socket,
|
jbe@182
|
478 -- optionally feeding these bytes chunk-wise into
|
jbe@182
|
479 -- the "process_body_chunk" callback function:
|
jbe@168
|
480 local function read_body_bytes(remaining)
|
jbe@168
|
481 while remaining > 0 do
|
jbe@182
|
482 local chunklen
|
jbe@168
|
483 if remaining > input_chunk_size then
|
jbe@182
|
484 chunklen = input_chunk_size
|
jbe@168
|
485 else
|
jbe@182
|
486 chunklen = remaining
|
jbe@168
|
487 end
|
jbe@182
|
488 local chunk = read(chunklen)
|
jbe@182
|
489 remaining = remaining - chunklen
|
jbe@168
|
490 if process_body_chunk then
|
jbe@168
|
491 process_body_chunk(chunk)
|
jbe@168
|
492 end
|
jbe@168
|
493 end
|
jbe@168
|
494 end
|
jbe@168
|
495 -- coroutine for request body processing:
|
jbe@168
|
496 local function read_body()
|
jbe@168
|
497 if request.headers_flags["Transfer-Encoding"]["chunked"] then
|
jbe@176
|
498 local limit = body_size_limit
|
jbe@168
|
499 while true do
|
jbe@176
|
500 local line = read(32 + limit, "\n")
|
jbe@168
|
501 local zeros, lenstr = string.match(line, "^(0*)([1-9A-Fa-f]+[0-9A-Fa-f]*)\r?\n$")
|
jbe@168
|
502 local chunkext
|
jbe@168
|
503 if lenstr then
|
jbe@168
|
504 chunkext = ""
|
jbe@168
|
505 else
|
jbe@168
|
506 zeros, lenstr, chunkext = string.match(line, "^(0*)([1-9A-Fa-f]+[0-9A-Fa-f]*)([ \t;].-)\r?\n$")
|
jbe@168
|
507 end
|
jbe@168
|
508 if not lenstr or #lenstr > 13 then
|
jbe@168
|
509 request_error(true, "400 Bad Request", "Encoding error while reading chunk of request body")
|
jbe@168
|
510 end
|
jbe@168
|
511 local len = tonumber("0x" .. lenstr)
|
jbe@176
|
512 limit = limit - (#zeros + #chunkext + len)
|
jbe@176
|
513 if limit < 0 then
|
jbe@168
|
514 request_error(true, "413 Request Entity Too Large", "Request body size limit exceeded")
|
jbe@168
|
515 end
|
jbe@168
|
516 if len == 0 then break end
|
jbe@168
|
517 read_body_bytes(len)
|
jbe@170
|
518 local term = read(2, "\n")
|
jbe@168
|
519 if term ~= "\r\n" and term ~= "\n" then
|
jbe@168
|
520 request_error(true, "400 Bad Request", "Encoding error while reading chunk of request body")
|
jbe@168
|
521 end
|
jbe@168
|
522 end
|
jbe@168
|
523 while true do
|
jbe@176
|
524 local line = read(2 + limit, "\n")
|
jbe@168
|
525 if line == "\r\n" or line == "\n" then break end
|
jbe@176
|
526 limit = limit - #line
|
jbe@176
|
527 if limit < 0 then
|
jbe@168
|
528 request_error(true, "413 Request Entity Too Large", "Request body size limit exceeded while reading trailer section of chunked request body")
|
jbe@168
|
529 end
|
jbe@168
|
530 end
|
jbe@168
|
531 elseif request_body_content_length then
|
jbe@168
|
532 read_body_bytes(request_body_content_length)
|
jbe@168
|
533 end
|
jbe@168
|
534 end
|
jbe@172
|
535 -- function to setup default request body handling:
|
jbe@172
|
536 local function default_request_body_handling()
|
jbe@172
|
537 local post_params_list, post_params = new_params_list()
|
jbe@172
|
538 local content_type = request.headers_value["Content-Type"]
|
jbe@172
|
539 if content_type then
|
jbe@172
|
540 if
|
jbe@172
|
541 content_type == "application/x-www-form-urlencoded" or
|
jbe@172
|
542 string.match(content_type, "^application/x%-www%-form%-urlencoded *;")
|
jbe@172
|
543 then
|
jbe@172
|
544 read_urlencoded_form(post_params_list, request.body)
|
jbe@172
|
545 request.post_params_list, request.post_params = post_params_list, post_params
|
jbe@172
|
546 else
|
jbe@172
|
547 local boundary = string.match(
|
jbe@172
|
548 content_type,
|
jbe@172
|
549 '^multipart/form%-data[ \t]*[;,][ \t]*boundary="([^"]+)"$'
|
jbe@172
|
550 ) or string.match(
|
jbe@172
|
551 content_type,
|
jbe@172
|
552 '^multipart/form%-data[ \t]*[;,][ \t]*boundary=([^"; \t]+)$'
|
jbe@172
|
553 )
|
jbe@172
|
554 if boundary then
|
jbe@172
|
555 local post_metadata_list, post_metadata = new_params_list()
|
jbe@172
|
556 boundary = "--" .. boundary
|
jbe@172
|
557 local headerdata = ""
|
jbe@172
|
558 local streamer
|
jbe@172
|
559 local field_name
|
jbe@172
|
560 local metadata = {}
|
jbe@172
|
561 local value_parts
|
jbe@172
|
562 local function default_streamer(chunk)
|
jbe@172
|
563 value_parts[#value_parts+1] = chunk
|
jbe@172
|
564 end
|
jbe@172
|
565 local function stream_part_finish()
|
jbe@172
|
566 if streamer == default_streamer then
|
jbe@172
|
567 local value = table.concat(value_parts)
|
jbe@172
|
568 value_parts = nil
|
jbe@172
|
569 if field_name then
|
jbe@172
|
570 local values = post_params_list[field_name]
|
jbe@172
|
571 values[#values+1] = value
|
jbe@172
|
572 local metadata_entries = post_metadata_list[field_name]
|
jbe@172
|
573 metadata_entries[#metadata_entries+1] = metadata
|
jbe@172
|
574 end
|
jbe@172
|
575 else
|
jbe@172
|
576 streamer()
|
jbe@172
|
577 end
|
jbe@172
|
578 headerdata = ""
|
jbe@172
|
579 streamer = nil
|
jbe@172
|
580 field_name = nil
|
jbe@172
|
581 metadata = {}
|
jbe@172
|
582 end
|
jbe@172
|
583 local function stream_part_chunk(chunk)
|
jbe@172
|
584 if streamer then
|
jbe@172
|
585 streamer(chunk)
|
jbe@172
|
586 else
|
jbe@172
|
587 headerdata = headerdata .. chunk
|
jbe@172
|
588 while true do
|
jbe@172
|
589 local line, remaining = string.match(headerdata, "^(.-)\r?\n(.*)$")
|
jbe@172
|
590 if not line then
|
jbe@172
|
591 break
|
jbe@172
|
592 end
|
jbe@172
|
593 if line == "" then
|
jbe@172
|
594 streamer = streamed_post_params[field_name]
|
jbe@172
|
595 if not streamer then
|
jbe@172
|
596 for i, rule in ipairs(streamed_post_param_patterns) do
|
jbe@172
|
597 if string.match(field_name, rule[1]) then
|
jbe@172
|
598 streamer = rule[2]
|
jbe@172
|
599 break
|
jbe@172
|
600 end
|
jbe@172
|
601 end
|
jbe@172
|
602 end
|
jbe@172
|
603 if not streamer then
|
jbe@172
|
604 value_parts = {}
|
jbe@172
|
605 streamer = default_streamer
|
jbe@172
|
606 end
|
jbe@172
|
607 streamer(remaining, field_name, metadata)
|
jbe@172
|
608 return
|
jbe@172
|
609 end
|
jbe@172
|
610 headerdata = remaining
|
jbe@172
|
611 local header_key, header_value = string.match(line, "^([^:]*):[ \t]*(.-)[ \t]*$")
|
jbe@172
|
612 if not header_key then
|
jbe@172
|
613 request_error(true, "400 Bad Request", "Invalid header in multipart/form-data part")
|
jbe@172
|
614 end
|
jbe@172
|
615 header_key = string.lower(header_key)
|
jbe@172
|
616 if header_key == "content-disposition" then
|
jbe@172
|
617 local escaped_header_value = string.gsub(header_value, '"[^"]*"', function(str)
|
jbe@172
|
618 return string.gsub(str, "=", "==")
|
jbe@172
|
619 end)
|
jbe@172
|
620 field_name = string.match(escaped_header_value, ';[ \t]*name="([^"]*)"')
|
jbe@172
|
621 if field_name then
|
jbe@172
|
622 field_name = string.gsub(field_name, "==", "=")
|
jbe@172
|
623 else
|
jbe@172
|
624 field_name = string.match(header_value, ';[ \t]*name=([^"; \t]+)')
|
jbe@172
|
625 end
|
jbe@172
|
626 metadata.file_name = string.match(escaped_header_value, ';[ \t]*filename="([^"]*)"')
|
jbe@172
|
627 if metadata.file_name then
|
jbe@172
|
628 metadata.file_name = string.gsub(metadata.file_name, "==", "=")
|
jbe@172
|
629 else
|
jbe@172
|
630 string.match(header_value, ';[ \t]*filename=([^"; \t]+)')
|
jbe@172
|
631 end
|
jbe@172
|
632 elseif header_key == "content-type" then
|
jbe@172
|
633 metadata.content_type = header_value
|
jbe@172
|
634 elseif header_key == "content-transfer-encoding" then
|
jbe@172
|
635 request_error(true, "400 Bad Request", "Content-transfer-encoding not supported by multipart/form-data parser")
|
jbe@172
|
636 end
|
jbe@172
|
637 end
|
jbe@172
|
638 end
|
jbe@172
|
639 end
|
jbe@172
|
640 local skippart = true -- ignore data until first boundary
|
jbe@172
|
641 local afterbound = false -- interpret 2 bytes after boundary ("\r\n" or "--")
|
jbe@172
|
642 local terminated = false -- final boundary read
|
jbe@172
|
643 local bigchunk = ""
|
jbe@172
|
644 request:set_request_body_streamer(function(chunk)
|
jbe@172
|
645 if chunk == nil then
|
jbe@172
|
646 if not terminated then
|
jbe@172
|
647 request_error(true, "400 Bad Request", "Premature end of multipart/form-data request body")
|
jbe@172
|
648 end
|
jbe@172
|
649 request.post_metadata_list, request.post_metadata = post_metadata_list, post_metadata
|
jbe@172
|
650 end
|
jbe@172
|
651 if terminated then
|
jbe@172
|
652 return
|
jbe@172
|
653 end
|
jbe@172
|
654 bigchunk = bigchunk .. chunk
|
jbe@172
|
655 while true do
|
jbe@172
|
656 if afterbound then
|
jbe@172
|
657 if #bigchunk <= 2 then
|
jbe@172
|
658 return
|
jbe@172
|
659 end
|
jbe@172
|
660 local terminator = string.sub(bigchunk, 1, 2)
|
jbe@172
|
661 if terminator == "\r\n" then
|
jbe@172
|
662 afterbound = false
|
jbe@172
|
663 bigchunk = string.sub(bigchunk, 3)
|
jbe@172
|
664 elseif terminator == "--" then
|
jbe@172
|
665 terminated = true
|
jbe@172
|
666 bigchunk = nil
|
jbe@172
|
667 return
|
jbe@172
|
668 else
|
jbe@172
|
669 request_error(true, "400 Bad Request", "Error while parsing multipart body (expected CRLF or double minus)")
|
jbe@172
|
670 end
|
jbe@172
|
671 end
|
jbe@172
|
672 local pos1, pos2 = string.find(bigchunk, boundary, 1, true)
|
jbe@172
|
673 if not pos1 then
|
jbe@172
|
674 if not skippart then
|
jbe@172
|
675 local safe = #bigchunk-#boundary
|
jbe@172
|
676 if safe > 0 then
|
jbe@172
|
677 stream_part_chunk(string.sub(bigchunk, 1, safe))
|
jbe@172
|
678 bigchunk = string.sub(bigchunk, safe+1)
|
jbe@172
|
679 end
|
jbe@172
|
680 end
|
jbe@172
|
681 return
|
jbe@172
|
682 end
|
jbe@172
|
683 if not skippart then
|
jbe@172
|
684 stream_part_chunk(string.sub(bigchunk, 1, pos1 - 1))
|
jbe@172
|
685 stream_part_finish()
|
jbe@172
|
686 else
|
jbe@172
|
687 boundary = "\r\n" .. boundary
|
jbe@172
|
688 skippart = false
|
jbe@172
|
689 end
|
jbe@172
|
690 bigchunk = string.sub(bigchunk, pos2 + 1)
|
jbe@172
|
691 afterbound = true
|
jbe@172
|
692 end
|
jbe@172
|
693 end)
|
jbe@172
|
694 else
|
jbe@172
|
695 request_error(true, "415 Unsupported Media Type", "Unknown Content-Type of request body")
|
jbe@172
|
696 end
|
jbe@172
|
697 end
|
jbe@172
|
698 end
|
jbe@172
|
699 end
|
jbe@172
|
700 -- function to prepare body processing:
|
jbe@162
|
701 local function prepare()
|
jbe@164
|
702 assert_not_faulty()
|
jbe@172
|
703 if process_body_chunk == nil then
|
jbe@172
|
704 default_request_body_handling()
|
jbe@172
|
705 end
|
jbe@171
|
706 if state ~= "init" then
|
jbe@162
|
707 return
|
jbe@162
|
708 end
|
jbe@171
|
709 consume = coroutine.wrap(read_body)
|
jbe@162
|
710 state = "no_status_sent"
|
jbe@171
|
711 if request.headers_flags["Expect"]["100-continue"] then
|
jbe@171
|
712 request:send_status("100 Continue")
|
jbe@171
|
713 request:finish_headers()
|
jbe@171
|
714 end
|
jbe@162
|
715 end
|
jbe@163
|
716 -- method to ignore input and close connection after response:
|
jbe@163
|
717 function request:monologue()
|
jbe@164
|
718 assert_not_faulty()
|
jbe@163
|
719 if
|
jbe@163
|
720 state == "headers_sent" or
|
jbe@163
|
721 state == "finished"
|
jbe@163
|
722 then
|
jbe@163
|
723 error("All HTTP headers have already been sent")
|
jbe@163
|
724 end
|
jbe@164
|
725 local old_state = state
|
jbe@164
|
726 state = "faulty"
|
jbe@163
|
727 consume = drain
|
jbe@163
|
728 close_requested = true
|
jbe@171
|
729 if old_state == "init" then
|
jbe@163
|
730 state = "no_status_sent"
|
jbe@164
|
731 else
|
jbe@164
|
732 state = old_state
|
jbe@162
|
733 end
|
jbe@162
|
734 end
|
jbe@163
|
735 --
|
jbe@162
|
736 -- method to send a HTTP response status (e.g. "200 OK"):
|
jbe@162
|
737 function request:send_status(status)
|
jbe@162
|
738 prepare()
|
jbe@164
|
739 local old_state = state
|
jbe@164
|
740 state = "faulty"
|
jbe@164
|
741 if old_state == "info_status_sent" then
|
jbe@162
|
742 send_flush("\r\n")
|
jbe@164
|
743 elseif old_state ~= "no_status_sent" then
|
jbe@162
|
744 error("HTTP status has already been sent")
|
jbe@162
|
745 end
|
jbe@162
|
746 local status1 = string.sub(status, 1, 1)
|
jbe@162
|
747 local status3 = string.sub(status, 1, 3)
|
jbe@162
|
748 send("HTTP/1.1 ", status, "\r\n", preamble)
|
jbe@162
|
749 local wrb = status_without_response_body[status3]
|
jbe@162
|
750 if wrb then
|
jbe@162
|
751 state = "bodyless_status_sent"
|
jbe@162
|
752 if wrb == "zero_content_length" then
|
jbe@162
|
753 request:send_header("Content-Length", 0)
|
jbe@162
|
754 end
|
jbe@162
|
755 elseif status1 == "1" then
|
jbe@162
|
756 state = "info_status_sent"
|
jbe@162
|
757 else
|
jbe@162
|
758 state = "status_sent"
|
jbe@162
|
759 end
|
jbe@162
|
760 end
|
jbe@162
|
761 -- method to send a HTTP response header:
|
jbe@162
|
762 -- (key and value must be provided as separate args)
|
jbe@162
|
763 function request:send_header(key, value)
|
jbe@164
|
764 assert_not_faulty()
|
jbe@171
|
765 if state == "init" or state == "no_status_sent" then
|
jbe@162
|
766 error("HTTP status has not been sent yet")
|
jbe@162
|
767 elseif
|
jbe@164
|
768 state == "headers_sent" or
|
jbe@164
|
769 state == "finished"
|
jbe@162
|
770 then
|
jbe@162
|
771 error("All HTTP headers have already been sent")
|
jbe@162
|
772 end
|
jbe@162
|
773 local key_lower = string.lower(key)
|
jbe@162
|
774 if key_lower == "content-length" then
|
jbe@162
|
775 if state == "info_status_sent" then
|
jbe@162
|
776 error("Cannot set Content-Length for informational status response")
|
jbe@162
|
777 end
|
jbe@162
|
778 local cl = assert(tonumber(value), "Invalid content-length")
|
jbe@162
|
779 if content_length == nil then
|
jbe@162
|
780 content_length = cl
|
jbe@162
|
781 elseif content_length == cl then
|
jbe@162
|
782 return
|
jbe@162
|
783 else
|
jbe@162
|
784 error("Content-Length has been set multiple times with different values")
|
jbe@162
|
785 end
|
jbe@162
|
786 elseif key_lower == "connection" then
|
jbe@162
|
787 for entry in string.gmatch(string.lower(value), "[^,]+") do
|
jbe@162
|
788 if string.match(entry, "^[ \t]*close[ \t]*$") then
|
jbe@162
|
789 if state == "info_status_sent" then
|
jbe@162
|
790 error("Cannot set \"Connection: close\" for informational status response")
|
jbe@162
|
791 end
|
jbe@162
|
792 close_responded = true
|
jbe@162
|
793 break
|
jbe@162
|
794 end
|
jbe@162
|
795 end
|
jbe@162
|
796 end
|
jbe@181
|
797 send(socket:write(key, ": ", value, "\r\n"))
|
jbe@162
|
798 end
|
jbe@162
|
799 -- function to terminate header section in response, optionally flushing:
|
jbe@162
|
800 -- (may be called multiple times unless response is finished)
|
jbe@162
|
801 local function finish_headers(with_flush)
|
jbe@162
|
802 if state == "finished" then
|
jbe@162
|
803 error("Response has already been finished")
|
jbe@162
|
804 elseif state == "info_status_sent" then
|
jbe@162
|
805 send_flush("\r\n")
|
jbe@162
|
806 state = "no_status_sent"
|
jbe@162
|
807 elseif state == "bodyless_status_sent" then
|
jbe@162
|
808 if close_requested and not close_responded then
|
jbe@162
|
809 request:send_header("Connection", "close")
|
jbe@162
|
810 end
|
jbe@181
|
811 state = "faulty"
|
jbe@162
|
812 send("\r\n")
|
jbe@163
|
813 finish()
|
jbe@162
|
814 state = "finished"
|
jbe@162
|
815 elseif state == "status_sent" then
|
jbe@162
|
816 if not content_length then
|
jbe@162
|
817 request:send_header("Transfer-Encoding", "chunked")
|
jbe@162
|
818 end
|
jbe@162
|
819 if close_requested and not close_responded then
|
jbe@162
|
820 request:send_header("Connection", "close")
|
jbe@162
|
821 end
|
jbe@181
|
822 state = "faulty"
|
jbe@162
|
823 send("\r\n")
|
jbe@162
|
824 if request.method == "HEAD" then
|
jbe@163
|
825 finish()
|
jbe@162
|
826 elseif with_flush then
|
jbe@162
|
827 send_flush()
|
jbe@162
|
828 end
|
jbe@162
|
829 state = "headers_sent"
|
jbe@162
|
830 elseif state ~= "headers_sent" then
|
jbe@162
|
831 error("HTTP status has not been sent yet")
|
jbe@162
|
832 end
|
jbe@162
|
833 end
|
jbe@162
|
834 -- method to finish and flush headers:
|
jbe@162
|
835 function request:finish_headers()
|
jbe@164
|
836 assert_not_faulty()
|
jbe@162
|
837 finish_headers(true)
|
jbe@162
|
838 end
|
jbe@164
|
839 -- method to send body data:
|
jbe@164
|
840 function request:send_data(...)
|
jbe@164
|
841 assert_not_faulty()
|
jbe@164
|
842 if output_state == "info_status_sent" then
|
jbe@164
|
843 error("No (non-informational) HTTP status has been sent yet")
|
jbe@164
|
844 elseif output_state == "bodyless_status_sent" then
|
jbe@164
|
845 error("Cannot send response data for body-less status message")
|
jbe@164
|
846 end
|
jbe@164
|
847 finish_headers(false)
|
jbe@164
|
848 if output_state ~= "headers_sent" then
|
jbe@164
|
849 error("Unexpected internal status in HTTP engine")
|
jbe@164
|
850 end
|
jbe@164
|
851 if request.method == "HEAD" then
|
jbe@164
|
852 return
|
jbe@164
|
853 end
|
jbe@164
|
854 for i = 1, select("#", ...) do
|
jbe@164
|
855 local str = tostring(select(i, ...))
|
jbe@164
|
856 if #str > 0 then
|
jbe@164
|
857 if content_length then
|
jbe@164
|
858 local bytes_to_send = #str
|
jbe@164
|
859 if bytes_sent + bytes_to_send > content_length then
|
jbe@164
|
860 error("Content length exceeded")
|
jbe@164
|
861 else
|
jbe@164
|
862 send(str)
|
jbe@164
|
863 bytes_sent = bytes_sent + bytes_to_send
|
jbe@164
|
864 end
|
jbe@164
|
865 else
|
jbe@164
|
866 chunk_bytes = chunk_bytes + #str
|
jbe@164
|
867 chunk_parts[#chunk_parts+1] = str
|
jbe@164
|
868 end
|
jbe@164
|
869 end
|
jbe@164
|
870 end
|
jbe@164
|
871 if chunk_bytes >= output_chunk_size then
|
jbe@164
|
872 send_chunk()
|
jbe@164
|
873 end
|
jbe@164
|
874 end
|
jbe@165
|
875 -- method to flush output buffer:
|
jbe@165
|
876 function request:flush()
|
jbe@165
|
877 assert_not_faulty()
|
jbe@165
|
878 send_chunk()
|
jbe@165
|
879 send_flush()
|
jbe@165
|
880 end
|
jbe@165
|
881 -- method to finish response:
|
jbe@165
|
882 function request:finish()
|
jbe@165
|
883 assert_not_faulty()
|
jbe@165
|
884 if state == "finished" then
|
jbe@165
|
885 return
|
jbe@165
|
886 elseif state == "info_status_sent" then
|
jbe@165
|
887 error("Informational HTTP response can be finished with :finish_headers() method")
|
jbe@165
|
888 end
|
jbe@165
|
889 finish_headers(false)
|
jbe@165
|
890 if state == "headers_sent" then
|
jbe@165
|
891 if request.method ~= "HEAD" then
|
jbe@165
|
892 state = "faulty"
|
jbe@165
|
893 if content_length then
|
jbe@165
|
894 if bytes_sent ~= content_length then
|
jbe@165
|
895 error("Content length not used")
|
jbe@165
|
896 end
|
jbe@165
|
897 else
|
jbe@165
|
898 send_chunk()
|
jbe@165
|
899 send("0\r\n\r\n")
|
jbe@165
|
900 end
|
jbe@165
|
901 finish()
|
jbe@165
|
902 end
|
jbe@165
|
903 state = "finished"
|
jbe@165
|
904 elseif state ~= "finished" then
|
jbe@165
|
905 error("Unexpected internal status in HTTP engine")
|
jbe@165
|
906 end
|
jbe@165
|
907 end
|
jbe@172
|
908 -- method to register POST param stream handler for a single field name:
|
jbe@172
|
909 function request:stream_post_param(field_name, callback)
|
jbe@172
|
910 if state ~= "init" then
|
jbe@172
|
911 error("Cannot setup request body streamer at this stage")
|
jbe@172
|
912 end
|
jbe@172
|
913 streamed_post_params[field_name] = callback
|
jbe@172
|
914 end
|
jbe@172
|
915 -- method to register POST param stream handler for a field name pattern:
|
jbe@172
|
916 function request:stream_post_params(pattern, callback)
|
jbe@172
|
917 if state ~= "init" then
|
jbe@172
|
918 error("Cannot setup request body streamer at this stage")
|
jbe@172
|
919 end
|
jbe@172
|
920 streamed_post_param_patterns[#streamed_post_param_patterns+1] = {pattern, callback}
|
jbe@172
|
921 end
|
jbe@172
|
922 -- method to register request body stream handler
|
jbe@172
|
923 function request:set_request_body_streamer(callback)
|
jbe@172
|
924 if state ~= "init" then
|
jbe@172
|
925 error("Cannot setup request body streamer at this stage")
|
jbe@172
|
926 end
|
jbe@172
|
927 local inprogress = false
|
jbe@172
|
928 local buffer = {}
|
jbe@172
|
929 process_body_chunk = function(chunk)
|
jbe@172
|
930 if inprogress then
|
jbe@172
|
931 buffer[#buffer+1] = chunk
|
jbe@172
|
932 else
|
jbe@172
|
933 inprogress = true
|
jbe@172
|
934 callback(chunk)
|
jbe@172
|
935 while #buffer > 0 do
|
jbe@172
|
936 chunk = table.concat(buffer)
|
jbe@172
|
937 buffer = {}
|
jbe@172
|
938 callback(chunk)
|
jbe@172
|
939 end
|
jbe@172
|
940 inprogress = false
|
jbe@172
|
941 end
|
jbe@172
|
942 end
|
jbe@172
|
943 end
|
jbe@172
|
944 -- method to start reading request body
|
jbe@172
|
945 function request:consume_input()
|
jbe@172
|
946 prepare()
|
jbe@172
|
947 consume_all()
|
jbe@172
|
948 end
|
jbe@172
|
949 -- method to stream request body
|
jbe@172
|
950 function request:stream_request_body(callback)
|
jbe@172
|
951 request:set_request_body_streamer(function(chunk)
|
jbe@172
|
952 if chunk ~= nil then
|
jbe@172
|
953 callback(chunk)
|
jbe@172
|
954 end
|
jbe@172
|
955 end)
|
jbe@172
|
956 request:consume_input()
|
jbe@172
|
957 end
|
jbe@172
|
958 -- metamethod to read special attibutes of request object:
|
jbe@172
|
959 function request_mt:__index(key, value)
|
jbe@172
|
960 if key == "body" then
|
jbe@172
|
961 local chunks = {}
|
jbe@172
|
962 request:stream_request_body(function(chunk)
|
jbe@172
|
963 chunks[#chunks+1] = chunk
|
jbe@172
|
964 end)
|
jbe@172
|
965 self.body = table.concat(chunks)
|
jbe@172
|
966 return self.body
|
jbe@172
|
967 elseif
|
jbe@172
|
968 key == "post_params_list" or key == "post_params" or
|
jbe@172
|
969 key == "post_metadata_list" or key == "post_metadata"
|
jbe@172
|
970 then
|
jbe@172
|
971 prepare()
|
jbe@172
|
972 consume_all()
|
jbe@172
|
973 return self[key]
|
jbe@172
|
974 end
|
jbe@172
|
975 end
|
jbe@173
|
976 -- coroutine for reading headers:
|
jbe@173
|
977 local function read_headers()
|
jbe@176
|
978 -- initialize limit:
|
jbe@176
|
979 local limit = header_size_limit
|
jbe@173
|
980 -- read and parse request line:
|
jbe@176
|
981 local line = read_eof(limit, "\n")
|
jbe@173
|
982 if not line then
|
jbe@173
|
983 return false, survive
|
jbe@173
|
984 end
|
jbe@176
|
985 limit = limit - #line
|
jbe@176
|
986 if limit == 0 then
|
jbe@173
|
987 return false, request_error(false, "414 Request-URI Too Long")
|
jbe@173
|
988 end
|
jbe@173
|
989 local target, proto
|
jbe@173
|
990 request.method, target, proto =
|
jbe@173
|
991 line:match("^([^ \t\r]+)[ \t]+([^ \t\r]+)[ \t]*([^ \t\r]*)[ \t]*\r?\n$")
|
jbe@173
|
992 if not request.method then
|
jbe@173
|
993 return false, request_error(false, "400 Bad Request")
|
jbe@173
|
994 elseif proto ~= "HTTP/1.1" then
|
jbe@173
|
995 return false, request_error(false, "505 HTTP Version Not Supported")
|
jbe@173
|
996 end
|
jbe@173
|
997 -- read and parse headers:
|
jbe@173
|
998 while true do
|
jbe@176
|
999 local line = read(limit, "\n");
|
jbe@176
|
1000 limit = limit - #line
|
jbe@173
|
1001 if line == "\r\n" or line == "\n" then
|
jbe@173
|
1002 break
|
jbe@173
|
1003 end
|
jbe@176
|
1004 if limit == 0 then
|
jbe@173
|
1005 return false, request_error(false, "431 Request Header Fields Too Large")
|
jbe@173
|
1006 end
|
jbe@173
|
1007 local key, value = string.match(line, "^([^ \t\r]+):[ \t]*(.-)[ \t]*\r?\n$")
|
jbe@173
|
1008 if not key then
|
jbe@173
|
1009 return false, request_error(false, "400 Bad Request")
|
jbe@173
|
1010 end
|
jbe@173
|
1011 local values = request.headers[key]
|
jbe@173
|
1012 values[#values+1] = value
|
jbe@173
|
1013 end
|
jbe@173
|
1014 return true -- success
|
jbe@173
|
1015 end
|
jbe@160
|
1016 -- wait for input:
|
jbe@160
|
1017 if not poll(socket_set, nil, request_idle_timeout) then
|
jbe@163
|
1018 return request_error(false, "408 Request Timeout", "Idle connection timed out")
|
jbe@38
|
1019 end
|
jbe@173
|
1020 -- read headers (with timeout):
|
jbe@173
|
1021 do
|
jbe@173
|
1022 local coro = coroutine.wrap(read_headers)
|
jbe@173
|
1023 local starttime = request_header_timeout and moonbridge_io.timeref()
|
jbe@173
|
1024 while true do
|
jbe@173
|
1025 local status, retval = coro()
|
jbe@173
|
1026 if status == nil then
|
jbe@173
|
1027 local remaining
|
jbe@173
|
1028 if request_header_timeout then
|
jbe@173
|
1029 remaining = request_header_timeout - moonbridge_io.timeref(starttime)
|
jbe@173
|
1030 end
|
jbe@173
|
1031 if not poll(socket_set, nil, remaining) then
|
jbe@173
|
1032 return request_error(false, "408 Request Timeout", "Timeout while receiving headers")
|
jbe@173
|
1033 end
|
jbe@173
|
1034 elseif status == false then
|
jbe@173
|
1035 return retval
|
jbe@173
|
1036 elseif status == true then
|
jbe@173
|
1037 break
|
jbe@173
|
1038 else
|
jbe@173
|
1039 error("Unexpected yield value")
|
jbe@173
|
1040 end
|
jbe@173
|
1041 end
|
jbe@173
|
1042 end
|
jbe@173
|
1043 -- process "Connection: close" header if existent:
|
jbe@173
|
1044 connection_close_requested = request.headers_flags["Connection"]["close"]
|
jbe@173
|
1045 -- process "Content-Length" header if existent:
|
jbe@173
|
1046 do
|
jbe@173
|
1047 local values = request.headers_csv_table["Content-Length"]
|
jbe@173
|
1048 if #values > 0 then
|
jbe@173
|
1049 request_body_content_length = tonumber(values[1])
|
jbe@173
|
1050 local proper_value = tostring(request_body_content_length)
|
jbe@173
|
1051 for i, value in ipairs(values) do
|
jbe@173
|
1052 value = string.match(value, "^0*(.*)")
|
jbe@173
|
1053 if value ~= proper_value then
|
jbe@173
|
1054 return request_error(false, "400 Bad Request", "Content-Length header(s) invalid")
|
jbe@173
|
1055 end
|
jbe@173
|
1056 end
|
jbe@176
|
1057 if request_body_content_length > body_size_limit then
|
jbe@173
|
1058 return request_error(false, "413 Request Entity Too Large", "Announced request body size is too big")
|
jbe@173
|
1059 end
|
jbe@173
|
1060 end
|
jbe@173
|
1061 end
|
jbe@173
|
1062 -- process "Transfer-Encoding" header if existent:
|
jbe@173
|
1063 do
|
jbe@173
|
1064 local flag = request.headers_flags["Transfer-Encoding"]["chunked"]
|
jbe@173
|
1065 local list = request.headers_csv_table["Transfer-Encoding"]
|
jbe@173
|
1066 if (flag and #list ~= 1) or (not flag and #list ~= 0) then
|
jbe@173
|
1067 return request_error(false, "400 Bad Request", "Unexpected Transfer-Encoding")
|
jbe@173
|
1068 end
|
jbe@173
|
1069 end
|
jbe@173
|
1070 -- process "Expect" header if existent:
|
jbe@173
|
1071 for i, value in ipairs(request.headers_csv_table["Expect"]) do
|
jbe@173
|
1072 if string.lower(value) ~= "100-continue" then
|
jbe@173
|
1073 return request_error(false, "417 Expectation Failed", "Unexpected Expect header")
|
jbe@173
|
1074 end
|
jbe@173
|
1075 end
|
jbe@173
|
1076 -- get mandatory Host header according to RFC 7230:
|
jbe@173
|
1077 request.host = request.headers_value["Host"]
|
jbe@173
|
1078 if not request.host then
|
jbe@173
|
1079 return request_error(false, "400 Bad Request", "No valid host header")
|
jbe@173
|
1080 end
|
jbe@173
|
1081 -- parse request target:
|
jbe@173
|
1082 request.path, request.query = string.match(target, "^/([^?]*)(.*)$")
|
jbe@173
|
1083 if not request.path then
|
jbe@173
|
1084 local host2
|
jbe@173
|
1085 host2, request.path, request.query = string.match(target, "^[Hh][Tt][Tt][Pp]://([^/?]+)/?([^?]*)(.*)$")
|
jbe@173
|
1086 if host2 then
|
jbe@173
|
1087 if request.host ~= host2 then
|
jbe@173
|
1088 return request_error(false, "400 Bad Request", "No valid host header")
|
jbe@173
|
1089 end
|
jbe@173
|
1090 elseif not (target == "*" and request.method == "OPTIONS") then
|
jbe@173
|
1091 return request_error(false, "400 Bad Request", "Invalid request target")
|
jbe@173
|
1092 end
|
jbe@173
|
1093 end
|
jbe@173
|
1094 -- parse GET params:
|
jbe@173
|
1095 if request.query then
|
jbe@173
|
1096 read_urlencoded_form(request.get_params_list, request.query)
|
jbe@173
|
1097 end
|
jbe@173
|
1098 -- parse cookies:
|
jbe@173
|
1099 for i, line in ipairs(request.headers["Cookie"]) do
|
jbe@173
|
1100 for rawkey, rawvalue in
|
jbe@173
|
1101 string.gmatch(line, "([^=; ]*)=([^=; ]*)")
|
jbe@173
|
1102 do
|
jbe@173
|
1103 request.cookies[decode_uri(rawkey)] = decode_uri(rawvalue)
|
jbe@173
|
1104 end
|
jbe@173
|
1105 end
|
jbe@173
|
1106 -- (re)set timeout for handler:
|
jbe@173
|
1107 timeout(response_timeout or 0)
|
jbe@173
|
1108 -- call underlying handler and remember boolean result:
|
jbe@173
|
1109 if handler(request) ~= true then survive = false end
|
jbe@173
|
1110 -- finish request (unless already done by underlying handler):
|
jbe@173
|
1111 request:finish()
|
jbe@173
|
1112 -- stop timeout timer:
|
jbe@173
|
1113 timeout(0)
|
jbe@162
|
1114 until close_responded
|
jbe@0
|
1115 return survive
|
jbe@0
|
1116 end
|
jbe@0
|
1117 end
|
jbe@0
|
1118
|
jbe@0
|
1119 return _M
|
jbe@0
|
1120
|